CVE-2023-40654: Medium severity android vulnerability
Published Oct 8, 2023
·Updated
In FW-PackageManager, there is a possible missing permission check. This could lead to local escalation of privilege with System execution privileges needed
Affected Software
28 affected components
All of the following
Google Android=11.0
Any of the following
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Google Android=11.0
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Event History
Oct 8, 2023
CVE Published
via MITRE·03:36 AM
Data Sourced
via MITRE·03:36 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-40654?
The severity of CVE-2023-40654 is medium.
2
What is the affected software for CVE-2023-40654?
The affected software for CVE-2023-40654 is Google Android 11.0.
3
What is the vulnerability type of CVE-2023-40654?
The vulnerability type of CVE-2023-40654 is local escalation of privilege.
4
What is the fix for CVE-2023-40654?
A fix for CVE-2023-40654 has not yet been released. It is recommended to follow the vendor's security advisory for updates.
5
Where can I find more information about CVE-2023-40654?
More information about CVE-2023-40654 can be found at the following reference link: [https://www.unisoc.com/en_us/secy/announcementDetail/1707266966118531074](https://www.unisoc.com/en_us/secy/announcementDetail/1707266966118531074)